CWE-862


Missing Authorization

The product does not perform an authorization check when an actor attempts to access a resource or perform an action.


We have discovered 23,972 live websites that are affected by CWE-862.

Contact us to get more info









CVEs

  • Count - 13



Countries

United States8,957 websites



Germany1,902 websites
France1,396 websites
GB1,272 websites
Italy1,089 websites
Spain1,006 websites
Canada876 websites
Netherlands820 websites
Australia772 websites
Brazil385 websites

TLDs

.com10,123 websites
.org2,301 websites
.de1,251 websites
.it751 websites
.co.uk660 websites
.nl657 websites
.fr570 websites
.com.au554 websites
.net533 websites
.ca417 websites

Newest CVEs

List of the most recent CVEs that are part of CWE-862
DiscoveredCVEDescriptionWebsites
Feb, 2024CVE-2023-47874 WordPress Perfmatters Plugin <= 2.1.6 is vulnerable to Broken Access Control1,361
Jan, 2024CVE-2022-36418 WordPress HREFLANG Tags Lite Plugin <= 2.0.0 is vulnerable to Broken Authentication2,250
Jan, 2024CVE-2024-0235 EventON (Free < 2.2.8, Premium < 4.5.5) - Unauthenticated Email Address Disclosure13,983
Jan, 2024CVE-2024-0236 EventON (Free < 2.2.8, Premium < 4.5.5) - Unauthenticated Virtual Event Password Disclosure13,983
Sep, 2023CVE-2023-4059 Profile Builder < 3.9.8 - Unauthenticated Plugin's Pages Creation56
Jul, 2023CVE-2023-2796 EventON < 2.1.2 - Unauthenticated Event Access61
Feb, 2023CVE-2022-4384 Stream < 3.9.2 - Subscriber+ Alert Creation6,159
Oct, 2022CVE-2022-3320 Bypassing Cloudflare Zero Trust policies using warp-cli set-custom-endpoint command180
Oct, 2022CVE-2022-3321 Lock WARP switch feature bypass on WARP mobile client for iOS180
Oct, 2022CVE-2022-3322 Lock WARP switch bypass on WARP mobile client using iOS quick action180
List of the most common CVEs that are part of CWE-862
DiscoveredCVEDescriptionWebsites
Jan, 2024CVE-2024-0235 EventON (Free < 2.2.8, Premium < 4.5.5) - Unauthenticated Email Address Disclosure13,983
Jan, 2024CVE-2024-0236 EventON (Free < 2.2.8, Premium < 4.5.5) - Unauthenticated Virtual Event Password Disclosure13,983
Feb, 2023CVE-2022-4384 Stream < 3.9.2 - Subscriber+ Alert Creation6,159
Jan, 2024CVE-2022-36418 WordPress HREFLANG Tags Lite Plugin <= 2.0.0 is vulnerable to Broken Authentication2,250
Feb, 2024CVE-2023-47874 WordPress Perfmatters Plugin <= 2.1.6 is vulnerable to Broken Access Control1,361
Oct, 2022CVE-2022-3320 Bypassing Cloudflare Zero Trust policies using warp-cli set-custom-endpoint command180
Oct, 2022CVE-2022-3321 Lock WARP switch feature bypass on WARP mobile client for iOS180
Oct, 2022CVE-2022-3322 Lock WARP switch bypass on WARP mobile client using iOS quick action180
Oct, 2022CVE-2022-3337 Lock WARP switch bypass by removing VPN profile on iOS mobile client180
Oct, 2022CVE-2022-3512 Lock WARP switch bypass using warp-cli 'add-trusted-ssid' command180

Websites affected by CWE-862

Top websites that are affected by CWE-862. Please click on the "Contact us" link to get more information.
DomainCountryRankContacts
*****.*********.org United States***
***.******.com United States*,***
**********.com Ireland**,***
*************.pl Poland**,***
***.**************.org United States**,***
***.**************.com United States**,***
***.********.com Austria**,***
***.*******.com United States**,***
***.*****.com United States**,***
*********************.org United States**,***
See full domain list